Close Menu
    Facebook X (Twitter) Instagram
    USAHITMAN Conspiracy News
    Facebook X (Twitter) Instagram
    USAHITMAN Conspiracy News
    Home»Random News»How the feds put a bullet in a “bulletproof” Web host
    Random News

    How the feds put a bullet in a “bulletproof” Web host

    By mediahitmanJanuary 25, 2013Updated:January 25, 2013No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    2323297747_c2b352cf65_zby Nate Anderson

    Being an online criminal isn’t always easy. For one thing, there’s all that tedious administrative overhead of deploying command and control servers, finding proxies to mask them, and shifting IP addresses to stay off of private security blacklists. Today’s savvy cyber criminal, therefore, often outsources the work to so-called “bulletproof” hosting operations, which rent servers to criminals and take care of all the dirty details needed to keep them online. That was the approach taken by the Russian creator of malware known as Gozi—malicious password-stealing software which the US government today called “one of the most financially destructive computer viruses in history”—to store his stolen data. But as the malware man found out, bulletproof hosts can be taken down with enough effort. Even when they’re based in Romania.

    Gozi was coded back in 2005 and deployed in 2007. Back then, it largely targeted Europeans. When installed on a computer, the virus waited until the user visited an online banking site and then grabbed account names and passwords—anything that might be needed for a criminal to transfer money out of the user’s account. This information was then sent silently to the Gozi command and control servers, from which it was harvested on a regular basis.

    By 2010, the malware innovated in two important ways. First, it had gained the capability to do sophisticated Web injection. When an infected computer was pointed at a banking website, the virus wouldn’t simply steal account login information; it could be configured to inject additional data requests right into the bank’s webpage. This made it almost impossible to tell the requests were not being made by the bank itself. In this way, the malware could be tweaked to ask for Social Security numbers, driver’s license information, a mother’s maiden name, PIN codes—anything a client wanted.

    The second innovation? Gozi expanded to the US and started targeting specific US banks. The collected information was then sold to other criminals, who quickly transferred money out of the targeted bank accounts. On August 13, 2010, for instance, $8,710 went missing from a Bronx resident’s account. The amounts could go much higher; in February 2012, another New York resident lost $200,000. And it got even worse. An FBI investigation, revealed today, found two Gozi-infected computers had led to combined losses of $6 million for their two owners. Total losses appear to have reached “tens of millions” of dollars.

    So, starting in 2010, the FBI launched an investigation. It didn’t take long to find Gozi’s creator, a 25-year-old Moscow resident named Nikita Kuzmin. By November 2010, Kuzmin had been arrested during a trip to the US; by May 2011 he pleaded guilty and agreed to forfeit his Gozi earnings, which might reach up to $50 million. Deniss Čalovskis, the 27-year-old Latvian man who allegedly coded the Web injects and customized them for various banks was picked up by Latvian police in November 2012.

    Read More Here

    Bullet Bulletproof Feds Web host Websites
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    mediahitman

    Related Posts

    Lungs ‘magically’ heal damage from smoking

    January 30, 2020

    Longest-ever border smuggling tunnel found stretching between Tijuana and San Diego

    January 30, 2020

    Coronavirus: Starbucks closes 2,000 Chinese branches

    January 30, 2020
    Leave A Reply

    Facebook X (Twitter) Instagram Pinterest
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.